Note - SPPU's Degreeplus Beta Version is up, stay tuned for more details.
Note - SPPU's Degreeplus Beta Version is up, stay tuned for more details.

Course

Cyber Risk Management and Governance

46 hours 04 minutes

Credits: Optional Learning

Description

In this course, learners will develop a comprehensive and senior-level understanding of cybersecurity management, governance, and audit – aligned to the CISM and CISA frameworks. In the CISM track, learners will explore information security governance, business continuity, incident response, risk assessment and management, data privacy, authentication and access control, network security and attack mitigation, cryptography, secure device and OS management, social engineering, malware, and security monitoring. In the CISA track, learners will conduct information systems audits, analyse data and controls, apply IT management frameworks, regulations, and standards, and manage IT resources and monitoring. They will examine systems development and implementation, information assets protection, identity and access management, data classification, network security, virtualisation, cloud computing, data storage, malware defence, business continuity, vulnerability testing, digital evidence gathering, and continuous monitoring — equipping learners to govern, audit, and protect enterprise information systems at a professional level.

What Students Will Learn

  • CISM 2022: Information Security Governance
  • CISM 2022: Business Continuity & Security
  • CISM 2022: Incident Response
  • CISM 2022: Security Standards
  • CISM 2022: Managing Risk
  • CISM 2022: Data Privacy
  • CISM 2022: Assessing Risk
  • CISM 2022: Managing Authentication
  • CISM 2022: Implementing Access Control
  • CISM 2022: Network Security
  • CISM 2022: Network Attack Mitigation
  • CISM 2022: IT Service & Data Availability
  • CISM 2022: Common Network Security Threats
  • CISM 2022: Common Network Security Attacks
  • CISM 2022: Cloud Computing & Coding
  • CISM 2022: Data Protection with Cryptography
  • CISM 2022: Applied Cryptography
  • CISM 2022: Secure Device & OS Management
  • CISM 2022: Social Engineering & Malware
  • CISM 2022: Security Monitoring

  • CISA 2022: Information Systems Auditing
  • CISA 2022: Auditing, Data Analysis, & Controls
  • CISA 2022: IT Management Frameworks, Regulations, & Standards
  • CISA 2022: IT Resources & Monitoring
  • CISA 2022: Projects, Development, & Testing
  • CISA 2022: Information Systems Management
  • CISA 2022: Information Systems Development & Implementation
  • CISA 2022: Data Privacy
  • CISA 2022: IAM & Data Classification
  • CISA 2022: Securing Networks & IT Assets
  • CISA 2022: Protecting Information Assets
  • CISA 2022: Protecting Digital Assets
  • CISA 2022: Virtualization & Cloud Computing
  • CISA 2022: Data Storage & Malware
  • CISA 2022: Business Continuity
  • CISA 2022: System Development & Vulnerability Testing
  • CISA 2022: Digital Evidence Gathering
  • CISA 2022: Continuous Monitoring
  • CISA 2022: Auditing Scenarios

Overall Learning Outcomes

  • Establish and manage information security governance frameworks aligned to organisational strategy and business objectives
  • Develop and implement business continuity and incident response plans to ensure organisational resilience
  • Assess, manage, and communicate information security risks and apply relevant security standards and regulatory requirements
  • Protect data privacy and apply authentication and access control mechanisms across enterprise environments
  • Identify, analyse, and mitigate common network security threats and attacks
  • Ensure IT service and data availability through robust infrastructure and continuity planning
  • Apply cryptographic techniques and tools to protect data at rest and in transit
  • Manage secure device and operating system configurations and defend against social engineering and malware threats
  • Monitor security events and respond effectively to incidents across enterprise environments
  • Plan and conduct information systems audits using established frameworks, data analysis techniques, and audit controls
  • Apply IT management frameworks, regulations, and standards to govern information systems effectively
  • Manage IT resources, monitor system performance, and oversee systems development and implementation lifecycles
  • Protect and classify information assets using identity and access management, data classification, and network security controls
  • Secure virtualised environments, cloud infrastructure, and data storage systems against malware and emerging threats
  • Gather digital evidence, perform vulnerability testing, and apply continuous monitoring practices to sustain audit readiness